Apache 漏洞列表
共找到 661 个与 Apache 相关的漏洞
- 2025-12-18Apache Airflow Providers Edge3 设计缺陷漏洞
- 2025-12-12vulhub httpd apache 解析漏洞
- 2025-12-04Apache Struts2 资源释放不当漏洞
- POC 2025-12-02CVE-2018-17082: Apache2 - Transfer-Encoding Chunked XSS
- POC 2025-12-02apache-hive-config: Apache Hive Configuration - Exposure
- 2025-10-28Apache Tomcat URL重写绕过漏洞 (CVE-2025-55752)
- 2025-10-28Apache Tomcat 存在路径遍历漏洞(CVE-2025-55752)
- 2025-10-17Apache ActiveMQ NMS AMQP Client 反序列化漏洞
- 2025-09-12Apache ZooKeeper /commands/snapshot 权限绕过漏洞(CVE-2024-51504)
- 2025-09-08Apache Jackrabbit 代码注入漏洞
- 2025-09-05Apache Linkis 权限绕过漏洞(CVE-2023-27987)
- 2025-09-01CVE-2019-17558: Apache Solr Velocity Template RCE
- 2025-09-01tomcat-default-login: Apahce Tomcat Manager Default Login
- 2025-09-01flink-unauth-rce: Apache Flink Unauth RCE
- 2025-09-01solr-file-read: Apache Solr <= 8.8.1 Arbitrary File Read
- 2025-08-29Apache Struts2 S2-067 /index.action 文件上传漏洞(CVE-2024-53677)
- 2025-08-29Apache CXF Aegis databinding /test 文件读取漏洞(CVE-2024-28752)
- 2025-08-29Apache Struts2 2.0.0~2.2.3 S2-007 /user.action 命令执行漏洞(CVE-2012-0838)
- 2025-08-25Apache ActiveMQ Artemis Console存在默认账号密码
- 2025-08-22Apache OFBiz StatsSinceStart 远程代码执行漏洞(CVE-2024-45507)
- 2025-08-22Apache OFBiz /partymgr/control/getJSONuiLabel 服务器端请求伪造漏洞(CVE-2023-50968)
- 2025-08-21Apache Solr /solr/admin/cores XML 外部实体注入漏洞(CVE-2017-12629)
- 2025-08-19Apache Druid存在服务器请求伪造漏洞(CVE-2025-27888)
- 2025-08-05Apache HugeGraph存在代码注入漏洞(CVE-2024–27348)
- POC 2025-08-01CVE-2020-13935: Apache Tomcat WebSocket Frame Payload Length Validation Denial of Service
- POC 2025-08-01CVE-2021-45046-DAST: Apache Log4j2 - Remote Code Injection
- POC 2025-08-01CVE-2007-2449: Apache Tomcat 4.x-7.x - Cross-Site Scripting
- POC 2025-08-01CVE-2007-4556: OpenSymphony XWork/Apache Struts2 - Remote Code Execution
- POC 2025-08-01CVE-2010-0219: Apache Axis2 Default Login
- POC 2025-08-01CVE-2012-0392: Apache Struts2 S2-008 RCE
- POC 2025-08-01CVE-2012-0394: Apache Struts <2.3.1.1 - Remote Code Execution
- POC 2025-08-01CVE-2013-1965: Apache Struts2 S2-012 RCE
- POC 2025-08-01CVE-2013-2248: Apache Struts - Multiple Open Redirection Vulnerabilities
- POC 2025-08-01CVE-2013-2251: Apache Struts 2 - DefaultActionMapper Prefixes OGNL Code Execution
- POC 2025-08-01CVE-2016-3081: Apache S2-032 Struts - Remote Code Execution
- POC 2025-08-01CVE-2016-3088: Apache ActiveMQ Fileserver - Arbitrary File Write
- POC 2025-08-01CVE-2016-4437: Apache Shiro 1.2.4 Cookie RememberME - Deserial Remote Code Execution Vulnerability
- POC 2025-08-01CVE-2016-4975: Apache mod_userdir CRLF injection
- 2025-08-01CVE-2016-8735: Apache Tomcat - Remote Code Execution via JMX Ports
- POC 2025-08-01CVE-2017-12611: Apache Struts2 S2-053 - Remote Code Execution
- POC 2025-08-01CVE-2017-12615: Apache Tomcat Servers - Remote Code Execution
- POC 2025-08-01CVE-2017-12617: Apache Tomcat - Remote Code Execution
- POC 2025-08-01CVE-2017-12629: Apache Solr <= 7.1 - XML Entity Injection
- POC 2025-08-01CVE-2017-12635: Apache CouchDB 1.7.0 / 2.x < 2.1.1 - Remote Privilege Escalation
- POC 2025-08-01CVE-2017-15715: Apache httpd <=2.4.29 - Arbitrary File Upload
- POC 2025-08-01CVE-2017-5638: Apache Struts 2 - Remote Command Execution
- POC 2025-08-01CVE-2017-9791: Apache Struts2 S2-053 - Remote Code Execution
- POC 2025-08-01CVE-2017-9805: Apache Struts2 S2-052 - Remote Code Execution
- POC 2025-08-01CVE-2018-11759: Apache Tomcat JK Connect <=1.2.44 - Manager Access
- POC 2025-08-01CVE-2018-11776: Apache Struts2 S2-057 - Remote Code Execution
- POC 2025-08-01CVE-2018-11784: Apache Tomcat - Open Redirect
- POC 2025-08-01CVE-2018-1335: Apache Tika < 1.1.8 - Header Command Injection
- POC 2025-08-01CVE-2018-8006: Apache ActiveMQ <=5.15.5 - Cross-Site Scripting
- POC 2025-08-01CVE-2018-8024: Apache Spark UI - Cross-Site Scripting
- POC 2025-08-01CVE-2018-8033: Apache OFBiz 16.11.04 - XML Entity Injection
- POC 2025-08-01CVE-2019-0192: Apache Solr - Deserialization of Untrusted Data
- POC 2025-08-01CVE-2019-0193: Apache Solr DataImportHandler <8.2.0 - Remote Code Execution
- POC 2025-08-01CVE-2019-0221: Apache Tomcat - Cross-Site Scripting
- POC 2025-08-01CVE-2019-0230: Apache Struts <=2.5.20 - Remote Code Execution
- POC 2025-08-01CVE-2019-0232: Apache Tomcat `CGIServlet` enableCmdLineArguments - Remote Code Execution
- POC 2025-08-01CVE-2019-10092: Apache HTTP Server <=2.4.39 - HTML Injection/Partial Cross-Site Scripting
- POC 2025-08-01CVE-2019-10098: Apache HTTP server v2.4.0 to v2.4.39 - Open Redirect
- POC 2025-08-01CVE-2019-17558: Apache Solr <=8.3.1 - Remote Code Execution
- POC 2025-08-01CVE-2019-17564: Apache Dubbo 2.5.x-2.7.4 - Insecure Deserialization
- POC 2025-08-01CVE-2020-11975: Apache Unomi - Remote Code Execution
- POC 2025-08-01CVE-2020-11978: Apache Airflow <=1.10.10 - Remote Code Execution
- POC 2025-08-01CVE-2020-11984: Apache HTTP Server - Remote Code Execution
- POC 2025-08-01CVE-2020-11991: Apache Cocoon 2.1.12 - XML Injection
- POC 2025-08-01CVE-2020-13937: Apache Kylin - Exposed Configuration File
- POC 2025-08-01CVE-2020-13942: Apache Unomi <1.5.2 - Remote Code Execution
- POC 2025-08-01CVE-2020-13945: Apache APISIX - Insufficiently Protected Credentials
- POC 2025-08-01CVE-2020-17518: Apache Flink 1.5.1 - Local File Inclusion
- POC 2025-08-01CVE-2020-17519: Apache Flink - Local File Inclusion
- POC 2025-08-01CVE-2020-17526: Apache Airflow <1.10.14 - Authentication Bypass
- POC 2025-08-01CVE-2020-17530: Apache Struts 2.0.0-2.5.25 - Remote Code Execution
- POC 2025-08-01CVE-2020-1943: Apache OFBiz <=16.11.07 - Cross-Site Scripting
- POC 2025-08-01CVE-2020-1956: Apache Kylin 3.0.1 - Command Injection Vulnerability
- POC 2025-08-01CVE-2020-9484: Apache Tomcat Remote Command Execution
- POC 2025-08-01CVE-2020-9496: Apache OFBiz 17.12.03 - Cross-Site Scripting
- POC 2025-08-01CVE-2021-25646: Apache Druid - Remote Code Execution
- POC 2025-08-01CVE-2021-26295: Apache OFBiz <17.12.06 - Arbitrary Code Execution
- POC 2025-08-01CVE-2021-27850: Apache Tapestry - Remote Code Execution
- POC 2025-08-01CVE-2021-27905: Apache Solr <=8.8.1 - Server-Side Request Forgery
- POC 2025-08-01CVE-2021-29200: Apache OFBiz < 17.12.07 - Arbitrary Code Execution
- POC 2025-08-01CVE-2021-30128: Apache OFBiz <17.12.07 - Arbitrary Code Execution
- POC 2025-08-01CVE-2021-31805: Apache Struts2 S2-062 - Remote Code Execution
- POC 2025-08-01CVE-2021-36749: Apache Druid - Local File Inclusion
- POC 2025-08-01CVE-2021-37580: Apache ShenYu Admin JWT - Authentication Bypass
- POC 2025-08-01CVE-2021-38540: Apache Airflow - Unauthenticated Variable Import
- POC 2025-08-01CVE-2021-40438: Apache <= 2.4.48 Mod_Proxy - Server-Side Request Forgery
- POC 2025-08-01CVE-2021-41773: Apache 2.4.49 - Path Traversal and Remote Code Execution
- POC 2025-08-01CVE-2021-42013: Apache 2.4.49/2.4.50 - Path Traversal and Remote Code Execution
- POC 2025-08-01CVE-2021-44228: Apache Log4j2 Remote Code Injection
- POC 2025-08-01CVE-2021-44451: Apache Superset <=1.3.2 - Default Login
- POC 2025-08-01CVE-2021-45046: Apache Log4j2 - Remote Code Injection
- POC 2025-08-01CVE-2021-45232: Apache APISIX Dashboard <2.10.1 - API Unauthorized Access
- POC 2025-08-01CVE-2022-22733: Apache ShardingSphere ElasticJob-UI privilege escalation
- POC 2025-08-01CVE-2022-23944: Apache ShenYu Admin Unauth Access
- POC 2025-08-01CVE-2022-24112: Apache APISIX - Remote Code Execution
- POC 2025-08-01CVE-2022-24288: Apache Airflow OS Command Injection
- POC 2025-08-01CVE-2022-33891: Apache Spark UI - Remote Command Injection
- POC 2025-08-01CVE-2022-47501: Apache OFBiz < 18.12.07 - Local File Inclusion
- POC 2025-08-01CVE-2023-25194: Apache Druid Kafka Connect - Remote Code Execution
- POC 2025-08-01CVE-2023-27524: Apache Superset - Authentication Bypass
- POC 2025-08-01CVE-2023-49070: Apache OFBiz < 18.12.10 - Arbitrary Code Execution
- POC 2025-08-01CVE-2023-50290: Apache Solr - Host Environment Variables Leak via Metrics API
- POC 2025-08-01CVE-2023-50968: Apache OFBiz < 18.12.11 - Server Side Request Forgery
- POC 2025-08-01CVE-2023-51467: Apache OFBiz < 18.12.11 - Remote Code Execution
- POC 2025-08-01CVE-2024-27348: Apache HugeGraph-Server - Remote Command Execution
- POC 2025-08-01CVE-2024-29868: Apache StreamPipes <= 0.93.0 - Use of Cryptographically Weak PRNG in Recovery Token Generation
- POC 2025-08-01CVE-2024-30188: Apache DolphinScheduler >= 3.1.0, < 3.2.2 Resource File Read And Write
- POC 2025-08-01CVE-2024-32113: Apache OFBiz Directory Traversal - Remote Code Execution
- POC 2025-08-01CVE-2024-36104: Apache OFBiz - Directory Traversal & Remote Code Execution
- POC 2025-08-01CVE-2024-38472: Apache HTTPd Windows UNC - Server-Side Request Forgery
- POC 2025-08-01CVE-2024-38473: Apache HTTP Server - ACL Bypass
- POC 2025-08-01CVE-2024-38856: Apache OFBiz - Improper Authorization & Remote Code Execution
- POC 2025-08-01CVE-2024-39887: Apache Superset < 4.0.2 - SQL Injection
- POC 2025-08-01CVE-2024-41107: Apache CloudStack - SAML Signature Exclusion
- POC 2025-08-01CVE-2024-45195: Apache OFBiz - Remote Code Execution
- POC 2025-08-01CVE-2024-45216: Apache Solr - Authentication Bypass
- POC 2025-08-01CVE-2024-45507: Apache OFBiz - Remote Code Execution
- POC 2025-08-01CVE-2024-56325: Apache Pinot < 1.3.0 - Authentication Bypass
- POC 2025-08-01CVE-2024-56512: Apache NiFi - Information Disclosure
- POC 2025-08-01CVE-2025-24813: Apache Tomcat Path Equivalence - Remote Code Execution
- POC 2025-08-01CVE-2025-27888: Apache Druid - Server-Side Request Forgery
- POC 2025-08-01CVE-2023-46604: Apache ActiveMQ - Remote Code Execution
- POC 2025-08-01CVE-2017-5645: Apache Log4j Server - Deserialization Command Execution
- POC 2025-08-01CVE-2020-11981: Apache Airflow <=1.10.10 - Command Injection
- POC 2025-08-01CVE-2020-1938: Ghostcat - Apache Tomcat - AJP File Read/Inclusion Vulnerability
- POC 2025-08-01CVE-2021-44521: Apache Cassandra Load UDF RCE
- POC 2025-08-01CVE-2024-43441: Apache HugeGraph-Server <1.5.0 - Authentication Bypass
- POC 2025-08-01CNVD-2021-46825: Apache storm未经授权的访问
- POC 2025-08-01CVE-2007-4556: OpenSymphony XWork/Apache Struts2 - Remote Code Execution S2-001
- POC 2025-08-01CVE-2012-0392: Apache Struts2 S2-008 RCE
- POC 2025-08-01CVE-2013-1965: Apache Struts2 S2-012 RCE
- POC 2025-08-01CVE-2013-2251: Apache Struts 2 - DefaultActionMapper Prefixes OGNL Code Execution (S2-016)
- POC 2025-08-01CVE-2016-3081: Apache S2-032 Struts RCE
- POC 2025-08-01CVE-2017-12611: Apache Struts2 S2-053 - Remote Code Execution
- POC 2025-08-01CVE-2017-12615: Apache Tomcat 的远程代码执行漏洞
- POC 2025-08-01CVE-2017-12629: Apache Solr <= 7.1 XML entity injection
- POC 2025-08-01CVE-2017-5638: Apache Struts 2 - Remote Command Execution S2-045 S2-046
- POC 2025-08-01CVE-2017-9791: Apache Struts2 S2-053 RCE
- POC 2025-08-01CVE-2018-11759: Apache Tomcat JK Connect <=1.2.44 - Manager Access
- POC 2025-08-01CVE-2018-11776: Apache Struts2 S2-057 - Remote Code Execution
- POC 2025-08-01CVE-2018-8033: Apache OFBiz XXE
- POC 2025-08-01CVE-2019-0193: Apache Solr Remote Code Execution
- POC 2025-08-01CVE-2019-0230: Apache Struts <=2.5.20 - Remote Code Execution S2-059
- POC 2025-08-01CVE-2020-11991: Apache Cocoon 2.1.12 XML Injection
- POC 2025-08-01CVE-2020-13937: Apache Kylin Exposed Configuration File
- POC 2025-08-01CVE-2020-13945: Apache APISIX 默认密钥漏洞
- POC 2025-08-01CVE-2020-17518: Apache Flink 1.5.1 - Local File Inclusion
- POC 2025-08-01CVE-2020-17519: Apache Flink RESTful API Arbitrary File Read
- POC 2025-08-01CVE-2020-17526: Apache Airflow <1.10.14 - Authentication Bypass
- POC 2025-08-01CVE-2020-17530: Apache Struts 2.0.0-2.5.25 - Remote Code Execution S2-061
- POC 2025-08-01CVE-2020-1938: Ghostcat - Apache Tomcat - AJP File Read/Inclusion Vulnerability
- POC 2025-08-01CVE-2020-9496: Apache OFBiz XML-RPC Java Deserialization
- POC 2025-08-01CVE-2021-25646: Apache Druid - Remote Code Execution
- POC 2025-08-01CVE-2021-27905: Apache Solr <= 8.8.1 SSRF
- POC 2025-08-01CVE-2021-29200: Apache OFBiz < 17.12.07 - Arbitrary Code Execution
- POC 2025-08-01CVE-2021-31805: Apache Struts2 S2-062 RCE
- POC 2025-08-01CVE-2021-36749: Apache Druid Authentication Restrictions Bypass
- POC 2025-08-01CVE-2021-37580: Apache ShenYu Admin JWT authentication bypass
- POC 2025-08-01CVE-2021-40438: Apache <= 2.4.48 Mod_Proxy SSRF
- POC 2025-08-01CVE-2021-41773: Apache 2.4.49 - Path Traversal and Remote Code Execution
- POC 2025-08-01CVE-2021-42013: Apache 2.4.49/2.4.50 - Path Traversal and Remote Code Execution
- POC 2025-08-01CVE-2021-44228: Apache Log4j2 Remote Code Injection
- POC 2025-08-01CVE-2021-44451: Apache Superset Default Password
- POC 2025-08-01CVE-2021-45232: Apache APISIX Dashboard <2.10.1 - API Unauthorized Access
- POC 2025-08-01CVE-2022-23944: Apache ShenYu Admin Unauth Access
- POC 2025-08-01CVE-2022-24112: Apache APISIX apisix/batch-requests RCE
- POC 2025-08-01CVE-2022-33891: Apache Spark UI - Remote Command Injection
- POC 2025-08-01CVE-2023-25194: Apache Druid kafka RCE 漏洞
- POC 2025-08-01CVE-2023-27524: Apache Superset身份验证绕过
- POC 2025-08-01CVE-2023-32007: Apache Spark远程代码执行漏洞
- POC 2025-08-01CVE-2023-37582: Apache RocketMQ 远程命令执行漏洞
- POC 2025-08-01CVE-2023-46589: Apache Tomcat - Request Smuggling
- POC 2025-08-01CVE-2023-46604: Apache ActiveMQ RCE
- POC 2025-08-01CVE-2023-49070: Apache OFBiz < 18.12.10 - Arbitrary Code Execution
- POC 2025-08-01CVE-2024-38856: Apache OFBiz CVE-2024-38856 远程命令执行漏洞
- POC 2025-08-01CVE-2024-39887: Apache Superset < 4.0.2 - SQL Injection
- POC 2025-08-01CVE-2024-45216: Apache Solr 身份认证绕过
- POC 2025-08-01CVE-2025-27817: Apache Kafka 客户端任意文件读取
- POC 2025-08-01ambari-default-password: Apache Ambari Default Password
- POC 2025-08-01apisix-default-login: Apache Apisix Default Admin Login
- POC 2025-08-01dolphinscheduler-default-login: Apache DolphinScheduler Default Login
- POC 2025-08-01druid-default-login: Apache Druid Default Login
- POC 2025-08-01kafka-center-default-password: Apache Kafka Center Default Password
- POC 2025-08-01karaf-default-login: Apache Karaf - Default Login
- POC 2025-08-01ofbiz-default-password: Apache OfBiz Default Login
- POC 2025-08-01ranger-default-login: Apache Ranger - Default Login
- POC 2025-08-01hadoop-disclosure: Apache Hadoop Disclosure
- POC 2025-08-01nifi-api-unauthorized-access: Apache Nifi Api Unauthorized Access
- POC 2025-08-01nifi-unauth: Apache NiFi - Unauthenticated Access
- POC 2025-08-01storm-unauthorized-access: Apache Storm Unauthorized Access
- POC 2025-08-01zeppelin-unauth: Apache Zeppelin - Unauthenticated Access
- POC 2025-08-01zookeeper-unauth: Apache ZooKeeper - Unauthenticated Access
- POC 2025-08-01apache-druid-unauth: Apache Druid Unauth
- POC 2025-08-01apache-ofbiz-log4j-rce-temp: Apache OFBiz Log4j JNDI RCE
- POC 2025-08-01apache-ofbiz-log4j-rce: Apache OFBiz Log4j JNDI RCE
- POC 2025-08-01apache-ofbiz-programexport-rce: Apache ofbiz programexport RCE
- POC 2025-08-01apache-ofbiz-CVE-2023-51467-xmlrpc-rce: Apache ofbiz CVE-2023-51467 xmlrpc RCE
- POC 2025-08-01apache-solr-remotestreaming-anyfileread: Apache Solr RemoteStreaming 任意文件读取
- POC 2025-08-01solr-bypass-fileread: Apache-Solr 身份认证绕过导致任意文件读取
- POC 2025-08-01solr-log4j-rce: Apache Solr Log4j Remote Code Execution
- POC 2025-08-01file-disable-http-trace-method: Disable Apache2 HTTP TRACE Method
- POC 2025-08-01file-disable-server-header: Disable Apache2 Server Header
- POC 2025-08-01file-disable-server-signature: Disable Apache Server Signature
- POC 2025-08-01CVE-2020-9480: Apache Spark - Authentication Bypass
- POC 2025-08-01activemq-artemis-default-login: Apache ActiveMQ Artemis Console Default Login
- POC 2025-08-01activemq-default-login: Apache ActiveMQ Default Login
- POC 2025-08-01ambari-default-login: Apache Ambari Default Login
- POC 2025-08-01airflow-default-login: Apache Airflow Default Login
- POC 2025-08-01airflow-v3-default-login: Apache Airflow v3 Default Login
- POC 2025-08-01apache-apollo-default-login: Apache Apollo - Default Login
- POC 2025-08-01apache-hertzbeat-default-login: Apache HertzBeat - Default Credentials
- POC 2025-08-01apache-inlong-default-login: Apache InLong - Default Login
- POC 2025-08-01apache-streampark-default-login: Apache Streampark - Default Login
- POC 2025-08-01apisix-default-login: Apache Apisix Admin - Default Login
- POC 2025-08-01cloudstack-default-login: Apache CloudStack - Default Login
- POC 2025-08-01dolphinscheduler-default-login: Apache DolphinScheduler Default Login
- POC 2025-08-01doris-default-login: Apache Doris - Default Login
- POC 2025-08-01dubbo-admin-default-login: Apache Dubbo - Default Admin Discovery
- POC 2025-08-01kafka-center-default-login: Apache Kafka Center Default Login
- POC 2025-08-01karaf-default-login: Apache Karaf - Default Login
- POC 2025-08-01kylin-default-login: Apache Kylin Console - Default Login
- POC 2025-08-01ranger-default-login: Apache Ranger - Default Login
- POC 2025-08-01tomcat-default-login: Apache Tomcat Manager Default Login
- POC 2025-08-01ofbiz-default-login: Apache OfBiz Default Login
- POC 2025-08-01yarn-manager-exposure: Apache YARN ResourceManager Panel - Detect
- POC 2025-08-01airflow-configuration-exposure: Apache Airflow Configuration Page - Detect
- POC 2025-08-01apache-config: Apache Configuration File - Detect
- POC 2025-08-01apache-jspwiki-ip-userenum: Apache JSPWiki - User IP Enumeration
- POC 2025-08-01apache-kyuubi-config: Apache Kyuubi - Configuration Exposure
- POC 2025-08-01apache-pinot-config: Apache Pinot - Exposure
- POC 2025-08-01htpasswd-detection: Apache htpasswd Config - Detect
- POC 2025-08-01perl-status: Apache Mod_perl Status Page - Detect
- POC 2025-08-01apache-licenserc: Apache License File
- POC 2025-08-01struts-debug-mode: Apache Struts setup in Debug-Mode
- POC 2025-08-01struts-problem-report: Apache Struts Dev Mode - Detect
- POC 2025-08-01apache-drill-exposure: Apache Drill Exposure
- POC 2025-08-01apache-druid-unauth: Apache Druid Unauth
- POC 2025-08-01apache-impala: Apache Impala - Exposure
- POC 2025-08-01apache-struts-showcase: Apache Struts - ShowCase Application Exposure
- POC 2025-08-01apache-couchdb-unauth: Apache CouchDB - Unauthenticated Access
- POC 2025-08-01apache-filename-enum: Apache Filename Enumeration
- POC 2025-08-01apache-hbase-unauth: Apache Hbase Unauth
- POC 2025-08-01apache-nifi-unauth: Apache NiFi - Unauthenticated Access
- POC 2025-08-01apache-server-status-localhost: Server Status Disclosure
- POC 2025-08-01apache-server-status: Apache Server Status Disclosure
- POC 2025-08-01apache-storm-unauth: Apache Storm Unauth
- POC 2025-08-01apache-zeppelin-unauth: Apache Zeppelin - Unauthenticated Access
- POC 2025-08-01apachespark-ui-exposed: Apache Spark Application UI - Exposed
- POC 2025-08-01hadoop-unauth-rce: Apache Hadoop YARN ResourceManager - Remote Code Execution
- POC 2025-08-01struts-ognl-console: Apache Struts - OGNL Console
- POC 2025-08-01tomcat-directory-listing: Apache Tomcat - Directory Listing Enabled
- POC 2025-08-01unauth-apache-kafka-ui: Apache Kafka - Unauthorized UI Exposure
- POC 2025-08-01apache-druid-log4j-rce: Apache Druid - Remote Code Execution (Apache Log4j)
- POC 2025-08-01apache-flink-unauth-rce: Apache Flink - Remote Code Execution
- POC 2025-08-01apache-nifi-rce: Apache NiFi - Remote Code Execution
- POC 2025-08-01apache-ofbiz-log4j-rce: Apache OFBiz - JNDI Remote Code Execution (Apache Log4j)
- POC 2025-08-01apache-solr-file-read: Apache Solr <=8.8.1 - Local File Inclusion
- POC 2025-08-01apache-solr-log4j-rce: Apache Solr 7+ - Remote Code Execution (Apache Log4j)
- POC 2025-08-01apache-solr-rce: Apache Solr 9.1 - Remote Code Execution
- POC 2025-08-01code42-log4j-rce: Apache Code42 - Remote Code Execution (Apache Log4j)
- POC 2025-08-01yarn-resourcemanager-rce: Apache Hadoop YARN ResourceManager - Remote Code Execution
- POC 2025-08-01CVE-2023-37582: Apache RocketMQ - Remote Command Execution
- POC 2025-08-01exposed-zookeeper: Apache ZooKeeper - Unauthenticated Access
- POC 2025-08-01apache-dubbo-unauth: Apache Dubbo - Unauthenticated Access
- POC 2025-08-01apache-rocketmq-broker-unauth: Apache Rocketmq Broker - Unauthenticated Access
- POC 2025-08-01CVE-2016-8735: Apache Tomcat - Remote Code Execution via JMX Ports
- POC 2025-08-01default-apache-shiro: Apache Shiro Default Page
- POC 2025-08-01tomcat-detect: Apache Tomcat Detect
- POC 2025-08-01tomcat-manager: Apache Tomcat Manager Path Normalization Panel - Detect
- 2025-07-04Apache ActiveMQ /api/jolokia/list 未授权访问漏洞(CVE-2024-32114)
- 2025-06-26Apache Pinot存在认证绕过漏洞(CVE-2024-56325)
- 2025-06-26Apache Pinot 存在敏感信息泄露漏洞(CVE-2024-39676)
- 2025-06-26Apache Pinot 存在swagger-ui未授权访问漏洞
- 2025-06-14Apache Kafka Connect /connectors 文件读取漏洞(CVE-2025-27817)
- 2025-06-10Apache Struts s-067 存在任意文件上传漏洞(CVE-2024-53677)
- 2025-05-30Apache OFBiz /webtools/control/forgotPassword;/ProgramExport 代码执行漏洞 (CVE-2024-32113)
- 2025-04-27Apache Zeppelin shell 代码注入漏洞(CVE-2024-31861)
- 2025-04-25Apache Pinot / 未授权访问漏洞
- 2025-04-10Langflow /validate/code 远程代码执行漏洞(CVE-2025-3248)
- 2025-04-09Langflow /api/v1/validate/code 代码执行漏洞(CVE-2025-3248)
- 2025-03-21Apache HertzBeat /api/account/auth/form 默认口令漏洞
- 2025-03-12Apache Tomcat 远程命令执行(CVE-2025-24813)
- 2025-03-11Apache Tomcat Partial PUT远程代码执行漏洞
- 2025-03-07LightPicture /api/upload 文件上传漏洞(CVE-2025-1835)
- 2025-02-14Apache OFBiz /solr/demo/./debug/dump 文件读取漏洞(CVE-2022-47501)
- 2025-02-12Apache Felix Webconsole 跨站脚本漏洞
- 2025-01-23Apache Doris数据库 未授权访问漏洞
- 2025-01-15Apache Nifi 信息泄露漏洞(CVE-2024-56512)
- 2025-01-09Apache Archiva 任意密码重置漏洞
- 2024-12-22Apache Tomcat CVE-2024-56337 条件竞争 RCE (仅 Windows 受影响)
- 2024-12-18Apache Tomcat CVE-2024-50379 条件竞争 RCE (仅 Windows 受影响)
- 2024-12-11Apache Struts 安全漏洞
- 2024-12-10Apache NiFi API 远程命令执行漏洞
- 2024-12-10Apache Superset 权限管理不当漏洞
- 2024-12-06Apache Hive 需授权 反序列化漏洞
- 2024-12-04Apache StreamPark 弱口令漏洞
- 2024-12-04Apache Arrow R Package 反序列化漏洞 可致远程代码执行
- 2024-12-04Apache Ambari 未授权访问
- 2024-11-26Apache HertzBeat 需授权 命令注入漏洞
- 2024-11-25Apache HertzBeat 未授权 敏感信息泄露漏洞
- 2024-11-19Apache Tomcat 身份验证缺陷漏洞
- 2024-11-18Apache HertzBeat 模板注入漏洞 可致远程代码执行
- 2024-11-18Apache OFBiz 服务器端请求伪造(SSRF)漏洞
- 2024-11-18Apache Traffic Server 逻辑缺陷漏洞 可致权限提升
- 2024-11-14Apache Airflow session伪造漏洞
- 2024-10-31Apache Solr /solr/admin/info/properties:/admin/info/key 权限绕过漏洞(CVE-2024-45216)
- 2024-10-31Apache Solr身份认证绕过漏洞(CVE-2024-45216)
- 2024-10-28Apache Solr 身份认证绕过漏洞
- 2024-10-16Apache Solr 初始化不当漏洞
- 2024-10-16Apache Solr 存在身份验证缺陷漏洞
- 2024-10-10Apache XML Graphics FOP XML外部实体注入漏洞
- 2024-10-10Apache Subversion 命令注入漏洞
- 2024-10-08Apache Commons IO 资源分配控制不当漏洞 可导致拒绝服务攻击
- 2024-09-30Apache Airflow admin 未授权访问漏洞 (CVE-2020-17526)
- 2024-09-25Apache HertzBeat SnakeYaml 反序列化漏洞 可致远程代码执行
- 2024-09-25Apache Hadoop 敏感信息存储不当漏洞
- 2024-09-24Apache Tomcat 资源分配控制不当漏洞 可致拒绝服务
- 2024-09-24Apache DolphinScheduler 需授权 路径遍历漏洞
- 2024-09-10Apache OFBiz /viewdatafile 代码执行漏洞(CVE-2024-45195)
- 2024-09-09Apache OFBiz 身份验证绕过漏洞 可导致远程代码执行
- 2024-09-09Apache OFBiz 远程代码执行漏洞
- 2024-08-14Apache OFBiz CVE-2024-38856 未授权代码执行漏洞
- 2024-08-14Apache OFBiz CVE-2024-25065 鉴权绕过漏洞 1
- 2024-08-14Apache OFBiz CVE-2024-32113 目录遍历漏洞
- 2024-08-14Apache OFBiz CVE-2024-32113 目录遍历漏洞
- 2024-08-14Apache OFBiz CVE-2024-25065 鉴权绕过漏洞 2
- 2024-08-14Apache Tomcat CVE-2023-46589 请求走私漏洞
- 2024-08-14Apache Tomcat HTTP2 CVE-2024-24549 拒绝服务漏洞
- 2024-08-08Apache Solr前台RCE
- 2024-08-06Apache OFbiz /ProgramExport 命令执行漏洞(CVE-2024-38856)
- 2024-08-06Apache OFBiz 远程代码执行漏洞
- 2024-08-05Apache OFBiz /webtools/control/main/ProgramExport 存在代码注入漏洞
- 2024-08-05Apache OFBiz 授权不当致代码执行漏洞 (CVE-2024-38856)
- 2024-07-26Apache Solr /replication 文件读取漏洞(CVE-2017-3163)
- 2024-07-25Apache Arrow 日志信息泄露漏洞
- 2024-07-25Apache Solr ReplicationHandler CVE-2017-3163 目录遍历漏洞
- 2024-07-18Apache Tomcat FORM 认证重定向漏洞
- 2024-07-18Apache SSI 远程命令执行漏洞
- 2024-07-18Apache Log4j2 远程代码执行漏洞
- 2024-07-18Apache RocketMQ CVE-2023-33246 远程代码执行漏洞
- 2024-07-18Apache CRLF拒绝服务漏洞
- 2024-07-18Apache Tomcat SSI printenv CVE-2019-0221 跨站脚本漏洞
- 2024-07-09Apache CloudStack 初始化不当漏洞
- 2024-07-09Apache CloudStack 未授权 命令注入漏洞
- 2024-07-07Apache CloudStack 代码注入漏洞
- 2024-07-06Apache Tomcat 资源分配控制不当漏洞
- 2024-07-06Apache Wicket 代码注入漏洞
- 2024-07-04Apache HugeGraph-Server CVE-2024-27348 远程代码执行漏洞
- 2024-07-04Apache HugeGraph-Server CVE-2024-27347 服务器请求伪造漏洞
- 2024-07-04Apache OpenMeetings 事件说明组件跨站脚本漏洞
- 2024-07-04Apache Tomcat CVE-2021-33037请求走私漏洞
- 2024-07-04Apache Tomcat CVE-2021-33037请求走私漏洞
- 2024-07-04Apache Solr CVE-2019-0193 DataImportHandler 代码执行漏洞
- 2024-06-28Apache Struts HTTP 请求参数 OGNL 代码执行漏洞
- 2024-06-25Apache Kafka UI 需授权 反序列化漏洞
- 2024-06-24Apache Commons Configuration 远程命令执行漏洞(CVE-2022-33980)
- 2024-06-21Apache Tomcat ChunkedInputFilter畸形Chunk Size拒绝服务漏洞
- 2024-06-19Apache Hadoop 弱口令漏洞
- 2024-06-18Apache OFBiz 路径遍历漏洞(CVE-2024-32113)
- 2024-06-14Apache OFBiz /webtools/control/forgotPassword/././ProgramExport 目录遍历致代码执行漏洞 (CVE-2024-36104)
- 2024-06-14Apache RocketMQ 控制台 弱口令漏洞
- 2024-06-13Apache OFBiz CVE-2024-36104 鉴权绕过漏洞
- 2024-06-07APACHE-Solr /solr/admin/metrics 信息泄露漏洞
- 2024-06-05Apache OFBiz 存在远程代码执行漏洞
- 2024-06-04Apache OFBiz 代码执行漏洞(CVE-2024-36104)
- 2024-06-04Apache OFBiz /webtools/control/ProgramExport 存在路径遍历漏洞
- 2024-05-31Apache OFBiz 弱口令漏洞
- 2024-05-31Apache OFBiz CVE-2018-8033 XML外部实体注入漏洞
- 2024-05-31Apache Kafka Connect JNDI注入漏洞
- 2024-05-31Apache Spark shell doAs 命令注入漏洞
- 2024-05-31Apache Spark shell doAs 命令注入漏洞
- 2024-05-23Apache Airflow Experimental API身份验证绕过漏洞
- 2024-05-17Apache Airflow CVE-2020-11978远程代码执行漏洞
- 2024-05-09Apache OFBiz ProgramExport目录遍历致远程代码执行漏洞
- 2024-05-09Apache APISIX 默认token远程代码执行漏洞
- 2024-05-09Apache APISIX 默认token远程代码执行漏洞
- 2024-05-08Apache Struts2(S2-015)OGNL表达式注入漏洞(CVE-2013-2135)
- 2024-05-08Apache Struts2(S2-012)远程代码执行漏洞(CVE-2013-1965)
- 2024-05-06Apache Shiro 认证绕过漏洞(CVE-2020-13933)
- 2024-05-06Apache Kylin 操作系统命令注入漏洞(CVE-2020-13925)
- 2024-05-04Apache APISIX 环境问题漏洞
- 2024-04-25Apache Solr dataimport 存在外部实体注入漏洞(CVE-2018-1308)
- 2024-04-25Apache Solr 未授权上传漏洞(CVE-2020-13957)
- 2024-04-18Apache JSPWiki UserPreferences.jsp 跨站请求伪造漏洞
- 2024-04-18Apache JSPWiki UserPreferences.jsp 跨站请求伪造漏洞
- 2024-04-18Apache Subversion 拒绝服务漏洞
- 2024-04-18Apache OFBiz CVE-2021-29200 不安全的反序列化漏洞
- 2024-04-11Apache Zeppelin 远程代码执行漏洞
- 2024-04-11Apache Struts CVE-2023-50164 文件上传漏洞
- 2024-04-11Apache Tomcat CVE-2024-21733 信息泄露漏洞
- 2024-04-11Apache OFBiz groovy 远程代码执行漏洞
- 2024-04-10Apache Zeppelin 权限绕过漏洞
- 2024-03-29Apache OFBiz groovy 远程代码执行漏洞
- 2024-03-29Apache Superset CVE-2021-28125 URL开放重定向漏洞
- 2024-03-21Apache OFBiz XMLRPC 不安全的反序列化漏洞
- 2024-03-21Apache OFBiz XMLRPC 不安全的反序列化漏洞
- 2024-03-19Apache Linkis 日志信息泄露漏洞
- 2024-03-15Apache Druid Kafka Connect 远程代码执行漏洞(CVE-2023-25194)
- 2024-03-14Apache Log4j2 远程代码执行漏洞利用尝试 - HTTP Header
- 2024-03-14Apache Log4j2 远程代码执行漏洞利用尝试 - HTTP Payload
- 2024-03-14Apache Traffic Server HTTP range 拒绝服务漏洞
- 2024-03-07Apache Tomcat maxParameterCount 拒绝服务漏洞
- 2024-03-07Apache OFBiz CVE-2023-50968 服务端请求伪造漏洞
- 2024-03-02Apache DolphinScheduler 任意代码执行漏洞
- 2024-02-29Apache Ambari < 2.7.8 XXE漏洞
- 2024-02-29Apache CXF 接口信息泄露
- 2024-02-29Apache APISIX Dashboard CVE-2021-45232 未授权访问漏洞
- 2024-02-29Apache APISIX Dashboard CVE-2021-45232 未授权访问漏洞
- 2024-02-27Apache Solr properties 敏感信息泄漏漏洞(CVE-2023-50291)
- 2024-02-23Apache Solr 存在代码执行漏洞
- 2024-02-22Apache Kylin runSparkSubmit 命令注入漏洞
- 2024-02-22Apache ShardingSphere CVE-2022-22733远程代码执行漏洞
- 2024-02-22Apache Tomcat Form Authentication Example XSS 漏洞
- 2024-02-22Apache Struts OGNL BeanMap 代码执行漏洞
- 2024-02-22Apache Kylin getSparkSubmitCmd命令注入漏洞
- 2024-02-22Apache Kylin命令注入漏洞
- 2024-02-22Apache OFBiz createAnonContact 服务端模板注入漏洞
- 2024-02-22Apache Airflow CVE-2022-24288 命令注入漏洞
- 2024-02-22Apache Any23 CVE-2022-25312 XML外部实体注入漏洞
- 2024-02-22Apache Tomcat FORM 认证重定向漏洞
- 2024-02-22Apache Commons Text 远程代码执行漏洞
- 2024-02-22Apache Commons Text 远程代码执行漏洞
- 2024-02-22Apache Commons Text 远程代码执行漏洞
- 2024-02-22Apache Commons Text 远程代码执行漏洞
- 2024-02-22Apache Commons Text 远程代码执行漏洞
- 2024-02-22Apache Commons Text 远程代码执行漏洞
- 2024-02-22Apache Commons Text 远程代码执行漏洞
- 2024-02-22Apache Batik CVE-2022-40146 服务端请求伪造漏洞
- 2024-02-22Apache Multiviews CVE-2001-0731 任意目录遍历漏洞
- 2024-02-22Apache Archiva 任意目录删除漏洞
- 2024-02-22Apache Commons JXPath CVE-2022-41852 代码执行漏洞
- 2024-02-22Apache JSPWiki XHRHtml2Markup.jsp 反射型跨站脚本漏洞
- 2024-02-22Spring Security 和 Apache Shiro 认证绕过漏洞
- 2024-02-22Apache Shiro 认证绕过漏洞
- 2024-02-22Spring Security 和 Apache Shiro 认证绕过漏洞
- 2024-02-22Apache Fineract 目录遍历漏洞
- 2024-02-22Apache ShenYu CVE-2022-23944 信息泄露漏洞
- 2024-02-22Apache JSPWiki AJAXPreview.jsp 反射型跨站脚本漏洞
- 2024-02-22Apache Zeppelin WebsocketEventFactory 存储型跨站脚本漏洞
- 2024-02-22Apache APISIX CVE-2022-29266信息泄露漏洞
- 2024-02-11Apache Solr Backup/Restore APIs 远程代码执行漏洞
- 2024-02-07Apache httpd mod_lua req_parsebody 整数溢出漏洞
- 2024-02-07Apache Superset 身份验证绕过漏洞
- 2024-02-07Apache Superset 身份验证绕过漏洞(访问成功)
- 2024-02-07Apache Submarine CVE-2023-37924 多个SQL注入漏洞
- 2024-02-07Apache Superset CVE-2023-37941 远程代码执行漏洞
- 2024-02-07Apache Dubbo CVE-2021-32824验证绕过漏洞
- 2024-02-07Apache Jackrabbit CVE-2023-37895 远程代码执行漏洞
- 2024-02-07Apache Jackrabbit CVE-2023-37895 远程代码执行漏洞
- 2024-02-07Apache InLong CVE-2023-27296 JDBC反序列化漏洞
- 2024-02-07Apache RocketMQ CVE-2023-37582 远程代码执行漏洞
- 2024-02-07Apache RocketMQ CVE-2023-37582 远程代码执行漏洞
- 2024-02-07Apache RocketMQ CVE-2023-33246 远程代码执行漏洞
- 2024-02-07Apache Axis 任意代码执行漏洞 (创建日志接口)
- 2024-02-07Apache Shiro CVE-2023-34478 身份认证绕过漏洞
- 2024-02-07Apache Shiro CVE-2023-34478 身份认证绕过漏洞
- 2024-02-07Apache NiFi H2 Connection String远程代码执行漏洞
- 2024-02-07Apache Axis 任意代码执行漏洞 (创建日志接口 2)
- 2024-02-07Apache Axis 任意代码执行漏洞 (命令执行)
- 2024-02-07Apache Axis 任意代码执行漏洞 (创建jndi接口)
- 2024-02-03Apache Win32 .Bat利用漏洞
- 2024-02-02ApacheKylin 信息泄露漏洞
- 2024-01-30Rebuild /filex/read-raw SSRF漏洞
- 2024-01-26Apache Commons Configuration 远程代码执行漏洞
- 2024-01-25Apache OFBiz服务器端请求伪造漏洞(CVE-2023-50968)
- 2024-01-25Apache Dubbo Admin 权限绕过漏洞
- 2024-01-23Apache Tomcat 信息泄露漏洞
- 2024-01-19Apache Solr 环境变量信息泄漏漏洞(CVE-2023-50290)
- 2024-01-18Apache IoTDB 远程代码执行漏洞
- 2024-01-11Apache Axis 服务端请求伪造漏洞
- 2024-01-10Apache InLong 任意文件读取漏洞
- 2024-01-03Apache DolphinScheduler 任意代码执行漏洞
- 2023-12-28Apache OFBiz webtools/control/ProgramExport 远程代码执行漏洞(CVE-2023-51467)
- 2023-12-28Apache Ofbiz /webtools/control/getJSONuiLabelArray/ 存在任意文件读取漏洞
- 2023-12-28Apache Ofbiz /webtools/control/ProgramExport 存在远程代码执行漏洞
- 2023-12-27Apache OFBiz webtools/control/ProgramExport 远程代码执行漏洞(CVE-2023-51467)
- 2023-12-26Apache OFBiz 任意文件属性读取与SSRF漏洞
- 2023-12-22Apache Hadoop cluster 未授权访问漏洞
- 2023-12-22Aapche .htaccess 文件信息泄漏漏洞
- 2023-12-21Apache OFBiz groovy 远程代码执行漏洞
- 2023-12-20Apache APISIX Dashboard 弱口令漏洞
- 2023-12-19Apache Dubbo 反序列化漏洞
- 2023-12-12Apache Struts2 存在远程代码执行漏洞(S2-066)
- 2023-12-08Apache Struts2 文件上传漏洞
- 2023-12-07Apache OFBiz webtools/control/xmlrpc 远程代码执行漏洞(CVE-2023-49070)
- 2023-12-06Apache OFBiz 未授权远程代码执行漏洞 (CVE-2023-49070)
- 2023-12-03Apache Shenyu存在任意用户添加漏洞
- 2023-10-19Apache APISIX Dashboard /apisix/admin/migrate/import 未授权访问漏洞
- 2023-10-10Apache Superset Cookie 权限绕过漏洞(CVE-2023-27524)
- 2023-09-13Apache Solr /select 远程命令执行漏洞
- 2023-09-07Apache Superset < 2.1.1 后台远程代码执行漏洞
- 2023-09-06Apache Axis getService 方法存在远程命令执行
- 2023-08-29Apache Solr /api/schema-designer 远程代码执行漏洞
- 2023-07-28Apache Jackrabbit RMI 远程代码执行漏洞
- 2023-07-13Apache RocketMQ NameServer 远程命令执行漏洞
- 2023-07-12Apache Ambari Metrics Consumers 远程代码执行漏洞
- 2023-07-12Apache Ambari Server Agent 远程代码执行漏洞
- 2023-07-11Apache RocketMQ 远程代码执行漏洞
- 2023-07-11Apache Dubbo 反序列化远程代码执行漏洞
- 2023-06-30Apache Solr Velocity 模版注入漏洞(CVE-2019-17558)
- 2023-06-14Apache Axis SOAPMonitor Service 远程代码执行漏洞
- 2023-06-13Apache struts2 devMode远程代码执行漏洞 CNVD-2016-04656
- 2023-05-25Apache Commons Text远程代码执行漏洞(CVE-2022-42889)
- 2023-05-22Apache Superset 权限绕过漏洞(CVE-2023-27524)
- 2023-05-19Apache Archiva RepositoryServlet 代理功能 internal 文件任意文件读取漏洞(CVE-2022-40308)
- 2023-04-21Apache Cocoon XML 外部实体注入漏洞(CVE-2020-11991)
- 2023-04-14Apache Solr 远程代码执行漏洞(CNVD-2023-27598)
- 2023-04-07Apache-airflow默认密码登陆
- 2023-03-29Apache Druid 远程代码执行漏洞
- 2023-01-06远程桌面网关-Apache Guacamole默认账号密码
- 2022-11-15Apache Airflow < 2.4.0 example dag 远程代码执行漏洞
- 2022-11-08Apache Airflow 低于1.10.14身份认证绕过(CVE-2020-17526)
- 2022-10-19Apache Dubbo Hessian-Lite 远程代码执行漏洞
- 2022-10-14Apache Commons Text StringLookup 远程代码执行漏洞
- 2022-10-08Apache Commons JXPath 远程代码执行漏洞
- 2022-08-19Apache Airflow Docker Provider <3.0 example dag 远程代码执行漏洞
- 2022-07-29Apache CloudStack SAML XXE漏洞
- 2022-07-26Apache Spark-未授权命令执行(CVE-2022-33891)
- 2022-07-08Apache APISIX Dashboard命令执行漏洞(CVE-2022-24112)
- 2022-07-06Apache Superset 默认口令(CVE-2021-44451)
- 2022-07-06Apache Commons Configuration 远程代码执行漏洞(CVE-2022-33980)
- 2022-07-01Apache Shiro 身份认证绕过漏洞(CVE-2022-32532)
- 2022-06-27Apache Shiro 认证绕过漏洞(CVE-2020-1957)
- 2022-06-10Apache Struts2(S2-007)远程代码执行漏洞(CVE-2012-0838)
- 2022-05-30Apache CouchDB epmd 远程命令执行漏洞(CVE-2022-24706)
- 2022-05-25Apache Tika 资源管理错误漏洞
- 2022-05-05Apache Apisix 信息泄露漏洞
- 2022-05-05Apache CouchDB epmd 远程代码执行漏洞
- 2022-04-15Apache Struts2(S2-062)远程代码执行漏洞(CVE-2021-31805)
- 2022-04-14Apache Struts2(S2-061)远程代码执行漏洞(CVE-2020-17530)
- 2022-04-13Apache Struts 2 安全漏洞
- 2022-04-11Apache Airflow 系统命令注入(CVE-2022-24288)
- 2022-03-18Apache CloudStack 安全特征问题漏洞
- 2022-02-21Apache APISIX 安全漏洞
- 2022-02-10Apache ShardingSphere ElasticJob 默认口令
- 2022-02-10APACHE SHENYU2.4.0/2.4.1 API/PLUGIN 权限升级(CVE-2022-23944)
- 2022-02-09Apache APISIX 默认密钥漏洞(CVE-2020-13945)
- 2022-02-08Apache Dubbo Hessian-Lite 远程代码执行漏洞
- 2022-01-06Apache OfBiz 默认密码登录
- 2021-12-30Apache Solr <= 8.8.1 SSRF(CVE-2021-27905)
- 2021-12-29Apache APISIX Dashboard 未授权访问漏洞(CVE-2021-45232)
- 2021-12-22Apache SkyWalking基于log4J组件的远程命令执行漏洞
- 2021-12-16apache solr system log4j 远程命令执行
- 2021-12-16Apache Druid Log4j 远程命令执行
- 2021-12-13Apache Flink 文件上传 Log4j2 远程命令执行
- 2021-12-13Apache Struts2 Log4j 远程命令执行
- 2021-12-10apache solr log4j 远程命令执行
- 2021-12-10Apache Log4j2 远程代码执行漏洞
- 2021-11-24APACHE APISIX 存在默认口令
- 2021-11-24Apache ShenYu JWT身份绕过(CVE-2021-37580)
- 2021-11-22Apache ShenYu未授权访问漏洞
- 2021-11-22Apache Apisix 命令注入漏洞
- 2021-11-19Apache ShenYu 后台存在默认口令
- 2021-11-16Apache Storm 未授权访问漏洞
- 2021-11-16Apache Hbase 未授权访问漏洞
- 2021-10-18Apache mod_proxy SSRF(CVE-2021-40438)
- 2021-10-18Apache Druid 任意文件读取(CVE-2021-36749)
- 2021-08-18Apache Skywalking 8.3.0 SQL注入漏洞
- 2021-08-03Apache Struts2(S2-015)远程代码执行漏洞(CVE-2013-2134)
- 2021-08-03Apache Struts2(S2-005)远程代码执行漏洞
- 2021-08-03Apache Struts2(S2-001)远程代码执行漏洞(CVE-2007-4556)
- 2021-07-20Apache Solr 远程命令执行漏洞(CVE-2017-12629)
- 2021-07-01Apache Tapestry远程代码执行(CVE-2021-27850 )
- 2021-06-30Apache Dubbo Telnet handler 远程代码执行漏洞(CVE-2021-32824)
- 2021-06-29Apache Dubbo Hessian2 协议反序列化漏洞(CVE-2021-25641)
- 2021-06-28Apache Dubbo Provider反序列化漏洞(CVE-2020-1948)
- 2021-06-01Apache Dubbo Generic filter 远程代码执行漏洞
- 2021-04-13Apache Solr leaderUrl ContentStreams 存在SSRF漏洞
- 2021-03-24Apache OFBiz RMI反序列化前台命令执行(CVE-2021-26295)
- 2021-03-18Apache Solr 任意文件读取漏洞
- 2021-01-30Apache Druid filter 远程代码执行漏洞
- 2021-01-29Apache Kylin API未授权访问漏洞(CVE-2020-13937)
- 2021-01-20Apache Flink 任意文件写入(CVE-2020-17518)
- 2021-01-20Apache Flink 文件读取(CVE-2020-17519)
- 2021-01-19Apache Druid 远程代码执行 (CVE-2021-25646)
- 2021-01-19Apache Tika 命令注入漏洞(CVE-2018-1335)
- 2021-01-19Apache ofbiz xml-rpc页面反序列漏洞
- 2021-01-19Apache Unomi远程代码执行(CVE-2020-13942)
- 2021-01-19Apache Solr反序列化漏洞(CVE-2019-0192)
- 2021-01-19Apache Kylin 默认口令漏洞
- 2021-01-19Apache NiFi Api命令执行漏洞
- 2021-01-19Apache Solr XXE漏洞(CVE-2017-12629)
- 2021-01-19Apache Solr 远程命令执行漏洞(CVE-2019-17558)
- 2021-01-19Apache Axis 远程命令执行漏洞(CVE-2019-0227)
- 2021-01-19Apache Kylin 操作系统命令注入漏洞(CVE-2020-1956)
- 2021-01-19Apache Tomcat Ajp webapp 任意文件读取漏洞(CVE-2020-1938)
- 2021-01-19Apache-Solr模板注入远程代码执行漏洞(CVE-2019-0193)
- 2021-01-19Apache httpd server-status信息泄漏
- 2021-01-19Apache Roller xmlrpc文件-XXE漏洞(CVE-2014-0030)
- 2021-01-19Apache Continuum-远程命令执行
- 2021-01-19Apache Spark-未授权命令执行
- 2021-01-19Apache solr-未授权访问
- 2021-01-19Apache CVE-2017-9798内存泄漏
- 2021-01-19Apache Tomcat JK (mod_jk) 连接器-目录遍历(CVE-2018-11759)
- 2021-01-19Apache Shiro 1.2.4-反序列化命令执行
- 2021-01-19Apache OFBiz xmlrpc页面-XXE漏洞(CVE-2018-8033)
- 2021-01-19Apache Airflow 数据管道监控系统-未授权访问
- 2021-01-19Apache Struts2-输入验证漏洞(S2-057)(CVE-2018-11776)
- 2020-12-19Apache DolphinScheduler 远程代码执行漏洞
- 2020-12-11Apache Struts 代码注入漏洞
- 2020-12-08Apache Apisix 安全漏洞
- 2020-11-25Apache Unomi context.json 远程代码执行漏洞
- 2020-09-15Apache Struts 代码执行漏洞
- 2020-05-22(CVE-2020-1956) Apache Kylin RESTful API 命令注入漏洞
- 2020-05-15Apache CloudStack baremetal组件输入验证错误漏洞
- 2020-03-23Apache Tika 资源管理错误漏洞
- 2020-02-25Apache Tomcat AJP 文件读取与包含漏洞
- 2019-11-19Apache Solr 8.1.1和8.2.0版本 JMX服务远程代码执行漏洞
- 2019-11-01Apache Struts2 2.0.0~2.3.1.1 远程命令执行漏洞(S2-009)
- 2019-08-03Apache Tika 资源管理错误漏洞
- 2019-04-15Apache Tomcat CGIServlet远程代码执行漏洞
- 2018-08-22Apache Struts 输入验证错误漏洞
- 2018-04-26Apache Tika-server 命令执行漏洞
- 2018-03-27Apache HTTPD 换行解析漏洞(CVE-2017-15715)
- 2017-10-30Apache Struts 'TextParseUtil.translateVariables()'远程代码执行漏洞(S2-027)
- 2017-09-21Apache Struts 输入验证错误漏洞
- 2017-09-16Apache Struts 远程代码执行漏洞
- 2017-07-11Apache Struts 输入验证错误漏洞
- 2017-03-11Apache Struts 2 输入验证错误漏洞
- 2017-01-13Apache Storm远程代码执行漏洞CVE-2015-3188
- 2016-12-16Apache Tika 信息泄露漏洞
- 2016-10-03Apache Struts2 远程代码执行漏洞(S2-035)
- 2016-08-05Apache OpenOffice 远程代码执行漏洞
- 2016-07-05Apache Struts2 < 2.3.29 远程代码执行漏洞(S2-040)
- 2016-07-05Apache Struts 输入验证错误漏洞
- 2016-06-08Apache Struts 输入验证错误漏洞
- 2016-04-13Apache Struts 任意代码执行漏洞
- 2016-02-09Apache CloudStack 信息泄露漏洞
- 2016-02-09Apache CloudStack 信任管理漏洞
- 2016-02-04Apache Camel camel-xstream组件远程代码执行漏洞
- 2015-08-13Apache Groovy < 2.4.3远程代码执行漏洞
- 2014-12-10Apache CloudStack 授权问题漏洞
- 2014-12-10Apache Struts 跨站请求伪造漏洞
- 2014-09-12Apache Tomcat任意文件上传漏洞
- 2014-05-23Apache CloudStack和Citrix CloudPlatform 安全绕过漏洞
- 2014-05-23Apache CloudStack和Citrix CloudPlatform 加密问题漏洞
- 2014-05-08Apache Struts 权限许可和访问控制问题漏洞
- 2014-04-29Apache Struts 权限许可和访问控制问题漏洞
- 2014-04-29Apache Struts 权限许可和访问控制问题漏洞
- 2014-03-11Apache Struts 安全漏洞
- 2013-12-08Apache Roller 远程代码执行漏洞
- 2013-10-05Apache Camel 远程代码执行漏洞
- 2013-10-01Apache Struts 远程代码执行漏洞
- 2013-08-20Apache CloudStack 多个跨站脚本漏洞
- 2013-08-16Apache OFBiz Nested Expression 远程代码执行漏洞
- 2013-07-20Apache Struts 多个开放重定向漏洞
- 2013-07-17Apache Struts 任意OGNL代码执行漏洞
- 2013-07-17Apache Struts OGNL表达式注入漏洞
- 2013-07-11Apache Struts 代码注入漏洞
- 2013-07-11Apache Struts ‘includeParams’安全绕过漏洞
- 2013-07-11Apache Struts 2 代码注入漏洞
- 2013-01-23Apache CloudStack 本地信息泄露漏洞
- 2012-10-26Citrix Cloud.com CloudStack/Apache CloudStack pre-release 权限许可和访问控制漏洞
- 2012-03-03Apache Struts任意代码执行漏洞
- 2012-01-08Apache Struts ‘DebuggingInterceptor’组件代码注入漏洞
- 2011-09-01Apache Tomcat AJP协议安全限制绕过漏洞
- 2010-03-06Apache mod_proxy_ajp模块入站请求体远程拒绝服务漏洞